Fetching from the wire…
Public story · 2026-08-07 · high
GitHub found over half its new npm malware advisories were echoes of its own past reports, not fresh OpenSSF findings.
Why now: GitHub published the ecosystem expansion and the npm dedup finding together in an August 6 security blog post.
GitHub extended its Advisory Database to eight package ecosystems on August 6, wiring in OpenSSF's malicious-packages repository, per its security blog.
Developers on seven more ecosystems now get automatic warnings drawn from OpenSSF's 15,000-plus malware reports, alongside the npm users GitHub already covered.
The database now covers PyPI, Maven, RubyGems, NuGet, Go, crates.io, and Composer, alongside npm.
Malware advisories auto-publish without human review, so GitHub built the ingestion defensively. Per-run batch caps halt an entire run rather than let a partial import through. Each advisory's provenance is tracked to the exact upstream commit, and rollback happens at the batch level when something looks off.
Further down the post is the more interesting number. GitHub's team deduplicated new npm reports against OpenSSF's feed and found more than half had started as GitHub's own prior advisories.
That's a feedback loop hiding inside a security data source. A chunk of what looks like independent confirmation from OpenSSF is really GitHub's own data, reflected back at itself and counted again. GitHub caught it because it ran a dedup check before merging the feeds. Most tools that cite OpenSSF, or that cite GitHub, have no reason to run that check.
Worth watching is whether GitHub publishes dedup rates for the other seven ecosystems. npm might turn out to be the outlier, or the norm.
Each link below shares sources, entities, or timing with this story.
Every Node.js project you've ever touched probably depends on Axios. On March 31, a compromised npm maintainer account pushed backdoored versions 1.14.1 and 0.30.4 that silently installed a cross-platform remote access trojan on macOS, Windows, and Linux. The attack chain was...
Attackers exploited CVE-2026-63077, the critical unauthenticated RCE in TeamCity On-Premises that JetBrains itself disclosed July 27, against an unpatched JetBrains-run server, reaching the Cadence cloud coding service. Because the PyCharm plugin syncs project files to Cadence...
Co-CEO Andrew Bialecki described a system that takes a prompt, writes the spec, decomposes the problem into subsystems, writes the contractual API interfaces between them, then dispatches subagents against each piece, interrupting only when requirements are ambiguous. Every em...
Three things happened this month that only make sense together. Agent Plugins 1.0 shipped co-signed by six competitors: AWS, Anysphere, Microsoft, OpenAI, Vercel and Google (GitHub Changelog). It makes skills-plus-MCP bundles portable across clients. OpenAI's August 11 Codex c...
Jason Lemkin traced the numbers: Mailchimp peaked around $1.06B ARR in Q4 FY22, the only quarter Intuit ever disclosed the figure, and by Q3 FY26 it's in outright year-over-year revenue decline. Intuit paid $12B for it in 2021 when it was doing $800M and growing ~20%. Intuit h...
Between August 4 and August 8: Bending Spoons agreed to buy Airtable ($1.285B EV, 2.7x ARR), Klaviyo agreed to acquire AI customer-success startup Agency, and OpenAI acquired NextSlide. The buyers have nothing in common: a public app consolidator, an e-commerce marketing platf...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.